Related information Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) IdeaBox <= 1.1 (gorumDir) Remote File Include Vulnerability Micro CMS <= 0.3.5 (microcms_path) Remote File Include Vulnerability Grayscale BandSite CMS <=([root_path] ) Remote File Include Vulnerabilities [Full-disclosure] Calendar ( Provided by Codewalkers ) - SQL Injection From::) :) <liz0_(at)_bsdmail.com> Date:22.06.2006Subject:Eduha Meeting php shell upload VulnerabilitiesEduha Meeting php shell upload Vulnerabilities Site:http://eduha.forever.kz/ Demo:http://nextlevel.astrakhan.ru/meeting/ ---------------------------------------------------- Example: http://victim/path/index.php?act=add add photo(upload php phpshell) Bug Video: http://www.biyosecurity.be/video/meeting.rar ----------------------------------------------------- Credit :Liz0ziM Website:www.biyo.tk,www.biyosecurity.be Mail :liz0@bsdmail.com ------------------------------------------------------ Source: http://www.blogcu.com/Liz0ziM/716541/ http://biyosecurity.be/bugs/meeting.txt http://liz0zim.no-ip.org/meeting.txt
Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
IdeaBox <= 1.1 (gorumDir) Remote File Include Vulnerability
Micro CMS <= 0.3.5 (microcms_path) Remote File Include Vulnerability
Grayscale BandSite CMS <=([root_path] ) Remote File Include Vulnerabilities
[Full-disclosure] Calendar ( Provided by Codewalkers ) - SQL Injection